Skip to content
This repository has been archived by the owner on May 23, 2023. It is now read-only.

Security Policy violation Binary Artifacts #344

Open
google-allstar-prod bot opened this issue Dec 15, 2022 · 28 comments
Open

Security Policy violation Binary Artifacts #344

google-allstar-prod bot opened this issue Dec 15, 2022 · 28 comments
Labels

Comments

@google-allstar-prod
Copy link

This issue was automatically created by Allstar.

Security Policy Violation
Project is out of compliance with Binary Artifacts policy: binaries present in source code

Rule Description
Binary Artifacts are an increased security risk in your repository. Binary artifacts cannot be reviewed, allowing the introduction of possibly obsolete or maliciously subverted executables. For more information see the Security Scorecards Documentation for Binary Artifacts.

Remediation Steps
To remediate, remove the generated executable artifacts from the repository.

Artifacts Found

  • grpc-server/grpc_health_probe
  • proxies/auth-proxy-hybrid/apiproxy/resources/java/istio-products-javacallout-2.0.0.jar
  • proxies/auth-proxy-legacy/apiproxy/resources/java/istio-products-javacallout-2.0.0.jar
  • proxies/internal-proxy/apiproxy/resources/java/edge-micro-javacallout-1.0.0.jar

Additional Information
This policy is drawn from Security Scorecards, which is a tool that scores a project's adherence to security best practices. You may wish to run a Scorecards scan directly on this repository for more details.


Allstar has been installed on all Google managed GitHub orgs. Policies are gradually being rolled out and enforced by the GOSST and OSPO teams. Learn more at http://go/allstar

This issue will auto resolve when the policy is in compliance.

Issue created by Allstar. See https://github.com/ossf/allstar/ for more information. For questions specific to the repository, please contact the owner or maintainer.

@google-allstar-prod
Copy link
Author

Updating issue after ping interval. See its status below.


Project is out of compliance with Binary Artifacts policy: binaries present in source code

Rule Description
Binary Artifacts are an increased security risk in your repository. Binary artifacts cannot be reviewed, allowing the introduction of possibly obsolete or maliciously subverted executables. For more information see the Security Scorecards Documentation for Binary Artifacts.

Remediation Steps
To remediate, remove the generated executable artifacts from the repository.

Artifacts Found

  • grpc-server/grpc_health_probe
  • proxies/auth-proxy-hybrid/apiproxy/resources/java/istio-products-javacallout-2.0.0.jar
  • proxies/auth-proxy-legacy/apiproxy/resources/java/istio-products-javacallout-2.0.0.jar
  • proxies/internal-proxy/apiproxy/resources/java/edge-micro-javacallout-1.0.0.jar

Additional Information
This policy is drawn from Security Scorecards, which is a tool that scores a project's adherence to security best practices. You may wish to run a Scorecards scan directly on this repository for more details.

27 similar comments
@google-allstar-prod
Copy link
Author

Updating issue after ping interval. See its status below.


Project is out of compliance with Binary Artifacts policy: binaries present in source code

Rule Description
Binary Artifacts are an increased security risk in your repository. Binary artifacts cannot be reviewed, allowing the introduction of possibly obsolete or maliciously subverted executables. For more information see the Security Scorecards Documentation for Binary Artifacts.

Remediation Steps
To remediate, remove the generated executable artifacts from the repository.

Artifacts Found

  • grpc-server/grpc_health_probe
  • proxies/auth-proxy-hybrid/apiproxy/resources/java/istio-products-javacallout-2.0.0.jar
  • proxies/auth-proxy-legacy/apiproxy/resources/java/istio-products-javacallout-2.0.0.jar
  • proxies/internal-proxy/apiproxy/resources/java/edge-micro-javacallout-1.0.0.jar

Additional Information
This policy is drawn from Security Scorecards, which is a tool that scores a project's adherence to security best practices. You may wish to run a Scorecards scan directly on this repository for more details.

@google-allstar-prod
Copy link
Author

Updating issue after ping interval. See its status below.


Project is out of compliance with Binary Artifacts policy: binaries present in source code

Rule Description
Binary Artifacts are an increased security risk in your repository. Binary artifacts cannot be reviewed, allowing the introduction of possibly obsolete or maliciously subverted executables. For more information see the Security Scorecards Documentation for Binary Artifacts.

Remediation Steps
To remediate, remove the generated executable artifacts from the repository.

Artifacts Found

  • grpc-server/grpc_health_probe
  • proxies/auth-proxy-hybrid/apiproxy/resources/java/istio-products-javacallout-2.0.0.jar
  • proxies/auth-proxy-legacy/apiproxy/resources/java/istio-products-javacallout-2.0.0.jar
  • proxies/internal-proxy/apiproxy/resources/java/edge-micro-javacallout-1.0.0.jar

Additional Information
This policy is drawn from Security Scorecards, which is a tool that scores a project's adherence to security best practices. You may wish to run a Scorecards scan directly on this repository for more details.

@google-allstar-prod
Copy link
Author

Updating issue after ping interval. See its status below.


Project is out of compliance with Binary Artifacts policy: binaries present in source code

Rule Description
Binary Artifacts are an increased security risk in your repository. Binary artifacts cannot be reviewed, allowing the introduction of possibly obsolete or maliciously subverted executables. For more information see the Security Scorecards Documentation for Binary Artifacts.

Remediation Steps
To remediate, remove the generated executable artifacts from the repository.

Artifacts Found

  • grpc-server/grpc_health_probe
  • proxies/auth-proxy-hybrid/apiproxy/resources/java/istio-products-javacallout-2.0.0.jar
  • proxies/auth-proxy-legacy/apiproxy/resources/java/istio-products-javacallout-2.0.0.jar
  • proxies/internal-proxy/apiproxy/resources/java/edge-micro-javacallout-1.0.0.jar

Additional Information
This policy is drawn from Security Scorecards, which is a tool that scores a project's adherence to security best practices. You may wish to run a Scorecards scan directly on this repository for more details.

@google-allstar-prod
Copy link
Author

Updating issue after ping interval. See its status below.


Project is out of compliance with Binary Artifacts policy: binaries present in source code

Rule Description
Binary Artifacts are an increased security risk in your repository. Binary artifacts cannot be reviewed, allowing the introduction of possibly obsolete or maliciously subverted executables. For more information see the Security Scorecards Documentation for Binary Artifacts.

Remediation Steps
To remediate, remove the generated executable artifacts from the repository.

Artifacts Found

  • grpc-server/grpc_health_probe
  • proxies/auth-proxy-hybrid/apiproxy/resources/java/istio-products-javacallout-2.0.0.jar
  • proxies/auth-proxy-legacy/apiproxy/resources/java/istio-products-javacallout-2.0.0.jar
  • proxies/internal-proxy/apiproxy/resources/java/edge-micro-javacallout-1.0.0.jar

Additional Information
This policy is drawn from Security Scorecards, which is a tool that scores a project's adherence to security best practices. You may wish to run a Scorecards scan directly on this repository for more details.

@google-allstar-prod
Copy link
Author

Updating issue after ping interval. See its status below.


Project is out of compliance with Binary Artifacts policy: binaries present in source code

Rule Description
Binary Artifacts are an increased security risk in your repository. Binary artifacts cannot be reviewed, allowing the introduction of possibly obsolete or maliciously subverted executables. For more information see the Security Scorecards Documentation for Binary Artifacts.

Remediation Steps
To remediate, remove the generated executable artifacts from the repository.

Artifacts Found

  • grpc-server/grpc_health_probe
  • proxies/auth-proxy-hybrid/apiproxy/resources/java/istio-products-javacallout-2.0.0.jar
  • proxies/auth-proxy-legacy/apiproxy/resources/java/istio-products-javacallout-2.0.0.jar
  • proxies/internal-proxy/apiproxy/resources/java/edge-micro-javacallout-1.0.0.jar

Additional Information
This policy is drawn from Security Scorecards, which is a tool that scores a project's adherence to security best practices. You may wish to run a Scorecards scan directly on this repository for more details.

@google-allstar-prod
Copy link
Author

Updating issue after ping interval. See its status below.


Project is out of compliance with Binary Artifacts policy: binaries present in source code

Rule Description
Binary Artifacts are an increased security risk in your repository. Binary artifacts cannot be reviewed, allowing the introduction of possibly obsolete or maliciously subverted executables. For more information see the Security Scorecards Documentation for Binary Artifacts.

Remediation Steps
To remediate, remove the generated executable artifacts from the repository.

Artifacts Found

  • grpc-server/grpc_health_probe
  • proxies/auth-proxy-hybrid/apiproxy/resources/java/istio-products-javacallout-2.0.0.jar
  • proxies/auth-proxy-legacy/apiproxy/resources/java/istio-products-javacallout-2.0.0.jar
  • proxies/internal-proxy/apiproxy/resources/java/edge-micro-javacallout-1.0.0.jar

Additional Information
This policy is drawn from Security Scorecards, which is a tool that scores a project's adherence to security best practices. You may wish to run a Scorecards scan directly on this repository for more details.

@google-allstar-prod
Copy link
Author

Updating issue after ping interval. See its status below.


Project is out of compliance with Binary Artifacts policy: binaries present in source code

Rule Description
Binary Artifacts are an increased security risk in your repository. Binary artifacts cannot be reviewed, allowing the introduction of possibly obsolete or maliciously subverted executables. For more information see the Security Scorecards Documentation for Binary Artifacts.

Remediation Steps
To remediate, remove the generated executable artifacts from the repository.

Artifacts Found

  • grpc-server/grpc_health_probe
  • proxies/auth-proxy-hybrid/apiproxy/resources/java/istio-products-javacallout-2.0.0.jar
  • proxies/auth-proxy-legacy/apiproxy/resources/java/istio-products-javacallout-2.0.0.jar
  • proxies/internal-proxy/apiproxy/resources/java/edge-micro-javacallout-1.0.0.jar

Additional Information
This policy is drawn from Security Scorecards, which is a tool that scores a project's adherence to security best practices. You may wish to run a Scorecards scan directly on this repository for more details.

@google-allstar-prod
Copy link
Author

Updating issue after ping interval. See its status below.


Project is out of compliance with Binary Artifacts policy: binaries present in source code

Rule Description
Binary Artifacts are an increased security risk in your repository. Binary artifacts cannot be reviewed, allowing the introduction of possibly obsolete or maliciously subverted executables. For more information see the Security Scorecards Documentation for Binary Artifacts.

Remediation Steps
To remediate, remove the generated executable artifacts from the repository.

Artifacts Found

  • grpc-server/grpc_health_probe
  • proxies/auth-proxy-hybrid/apiproxy/resources/java/istio-products-javacallout-2.0.0.jar
  • proxies/auth-proxy-legacy/apiproxy/resources/java/istio-products-javacallout-2.0.0.jar
  • proxies/internal-proxy/apiproxy/resources/java/edge-micro-javacallout-1.0.0.jar

Additional Information
This policy is drawn from Security Scorecards, which is a tool that scores a project's adherence to security best practices. You may wish to run a Scorecards scan directly on this repository for more details.

@google-allstar-prod
Copy link
Author

Updating issue after ping interval. See its status below.


Project is out of compliance with Binary Artifacts policy: binaries present in source code

Rule Description
Binary Artifacts are an increased security risk in your repository. Binary artifacts cannot be reviewed, allowing the introduction of possibly obsolete or maliciously subverted executables. For more information see the Security Scorecards Documentation for Binary Artifacts.

Remediation Steps
To remediate, remove the generated executable artifacts from the repository.

Artifacts Found

  • grpc-server/grpc_health_probe
  • proxies/auth-proxy-hybrid/apiproxy/resources/java/istio-products-javacallout-2.0.0.jar
  • proxies/auth-proxy-legacy/apiproxy/resources/java/istio-products-javacallout-2.0.0.jar
  • proxies/internal-proxy/apiproxy/resources/java/edge-micro-javacallout-1.0.0.jar

Additional Information
This policy is drawn from Security Scorecards, which is a tool that scores a project's adherence to security best practices. You may wish to run a Scorecards scan directly on this repository for more details.

@google-allstar-prod
Copy link
Author

Updating issue after ping interval. See its status below.


Project is out of compliance with Binary Artifacts policy: binaries present in source code

Rule Description
Binary Artifacts are an increased security risk in your repository. Binary artifacts cannot be reviewed, allowing the introduction of possibly obsolete or maliciously subverted executables. For more information see the Security Scorecards Documentation for Binary Artifacts.

Remediation Steps
To remediate, remove the generated executable artifacts from the repository.

Artifacts Found

  • grpc-server/grpc_health_probe
  • proxies/auth-proxy-hybrid/apiproxy/resources/java/istio-products-javacallout-2.0.0.jar
  • proxies/auth-proxy-legacy/apiproxy/resources/java/istio-products-javacallout-2.0.0.jar
  • proxies/internal-proxy/apiproxy/resources/java/edge-micro-javacallout-1.0.0.jar

Additional Information
This policy is drawn from Security Scorecards, which is a tool that scores a project's adherence to security best practices. You may wish to run a Scorecards scan directly on this repository for more details.

@google-allstar-prod
Copy link
Author

Updating issue after ping interval. See its status below.


Project is out of compliance with Binary Artifacts policy: binaries present in source code

Rule Description
Binary Artifacts are an increased security risk in your repository. Binary artifacts cannot be reviewed, allowing the introduction of possibly obsolete or maliciously subverted executables. For more information see the Security Scorecards Documentation for Binary Artifacts.

Remediation Steps
To remediate, remove the generated executable artifacts from the repository.

Artifacts Found

  • grpc-server/grpc_health_probe
  • proxies/auth-proxy-hybrid/apiproxy/resources/java/istio-products-javacallout-2.0.0.jar
  • proxies/auth-proxy-legacy/apiproxy/resources/java/istio-products-javacallout-2.0.0.jar
  • proxies/internal-proxy/apiproxy/resources/java/edge-micro-javacallout-1.0.0.jar

Additional Information
This policy is drawn from Security Scorecards, which is a tool that scores a project's adherence to security best practices. You may wish to run a Scorecards scan directly on this repository for more details.

@google-allstar-prod
Copy link
Author

Updating issue after ping interval. See its status below.


Project is out of compliance with Binary Artifacts policy: binaries present in source code

Rule Description
Binary Artifacts are an increased security risk in your repository. Binary artifacts cannot be reviewed, allowing the introduction of possibly obsolete or maliciously subverted executables. For more information see the Security Scorecards Documentation for Binary Artifacts.

Remediation Steps
To remediate, remove the generated executable artifacts from the repository.

Artifacts Found

  • grpc-server/grpc_health_probe
  • proxies/auth-proxy-hybrid/apiproxy/resources/java/istio-products-javacallout-2.0.0.jar
  • proxies/auth-proxy-legacy/apiproxy/resources/java/istio-products-javacallout-2.0.0.jar
  • proxies/internal-proxy/apiproxy/resources/java/edge-micro-javacallout-1.0.0.jar

Additional Information
This policy is drawn from Security Scorecards, which is a tool that scores a project's adherence to security best practices. You may wish to run a Scorecards scan directly on this repository for more details.

@google-allstar-prod
Copy link
Author

Updating issue after ping interval. See its status below.


Project is out of compliance with Binary Artifacts policy: binaries present in source code

Rule Description
Binary Artifacts are an increased security risk in your repository. Binary artifacts cannot be reviewed, allowing the introduction of possibly obsolete or maliciously subverted executables. For more information see the Security Scorecards Documentation for Binary Artifacts.

Remediation Steps
To remediate, remove the generated executable artifacts from the repository.

Artifacts Found

  • grpc-server/grpc_health_probe
  • proxies/auth-proxy-hybrid/apiproxy/resources/java/istio-products-javacallout-2.0.0.jar
  • proxies/auth-proxy-legacy/apiproxy/resources/java/istio-products-javacallout-2.0.0.jar
  • proxies/internal-proxy/apiproxy/resources/java/edge-micro-javacallout-1.0.0.jar

Additional Information
This policy is drawn from Security Scorecards, which is a tool that scores a project's adherence to security best practices. You may wish to run a Scorecards scan directly on this repository for more details.

@google-allstar-prod
Copy link
Author

Updating issue after ping interval. See its status below.


Project is out of compliance with Binary Artifacts policy: binaries present in source code

Rule Description
Binary Artifacts are an increased security risk in your repository. Binary artifacts cannot be reviewed, allowing the introduction of possibly obsolete or maliciously subverted executables. For more information see the Security Scorecards Documentation for Binary Artifacts.

Remediation Steps
To remediate, remove the generated executable artifacts from the repository.

Artifacts Found

  • grpc-server/grpc_health_probe
  • proxies/auth-proxy-hybrid/apiproxy/resources/java/istio-products-javacallout-2.0.0.jar
  • proxies/auth-proxy-legacy/apiproxy/resources/java/istio-products-javacallout-2.0.0.jar
  • proxies/internal-proxy/apiproxy/resources/java/edge-micro-javacallout-1.0.0.jar

Additional Information
This policy is drawn from Security Scorecards, which is a tool that scores a project's adherence to security best practices. You may wish to run a Scorecards scan directly on this repository for more details.

@google-allstar-prod
Copy link
Author

Updating issue after ping interval. See its status below.


Project is out of compliance with Binary Artifacts policy: binaries present in source code

Rule Description
Binary Artifacts are an increased security risk in your repository. Binary artifacts cannot be reviewed, allowing the introduction of possibly obsolete or maliciously subverted executables. For more information see the Security Scorecards Documentation for Binary Artifacts.

Remediation Steps
To remediate, remove the generated executable artifacts from the repository.

Artifacts Found

  • grpc-server/grpc_health_probe
  • proxies/auth-proxy-hybrid/apiproxy/resources/java/istio-products-javacallout-2.0.0.jar
  • proxies/auth-proxy-legacy/apiproxy/resources/java/istio-products-javacallout-2.0.0.jar
  • proxies/internal-proxy/apiproxy/resources/java/edge-micro-javacallout-1.0.0.jar

Additional Information
This policy is drawn from Security Scorecards, which is a tool that scores a project's adherence to security best practices. You may wish to run a Scorecards scan directly on this repository for more details.

@google-allstar-prod
Copy link
Author

Updating issue after ping interval. See its status below.


Project is out of compliance with Binary Artifacts policy: binaries present in source code

Rule Description
Binary Artifacts are an increased security risk in your repository. Binary artifacts cannot be reviewed, allowing the introduction of possibly obsolete or maliciously subverted executables. For more information see the Security Scorecards Documentation for Binary Artifacts.

Remediation Steps
To remediate, remove the generated executable artifacts from the repository.

Artifacts Found

  • grpc-server/grpc_health_probe
  • proxies/auth-proxy-hybrid/apiproxy/resources/java/istio-products-javacallout-2.0.0.jar
  • proxies/auth-proxy-legacy/apiproxy/resources/java/istio-products-javacallout-2.0.0.jar
  • proxies/internal-proxy/apiproxy/resources/java/edge-micro-javacallout-1.0.0.jar

Additional Information
This policy is drawn from Security Scorecards, which is a tool that scores a project's adherence to security best practices. You may wish to run a Scorecards scan directly on this repository for more details.

@google-allstar-prod
Copy link
Author

Updating issue after ping interval. See its status below.


Project is out of compliance with Binary Artifacts policy: binaries present in source code

Rule Description
Binary Artifacts are an increased security risk in your repository. Binary artifacts cannot be reviewed, allowing the introduction of possibly obsolete or maliciously subverted executables. For more information see the Security Scorecards Documentation for Binary Artifacts.

Remediation Steps
To remediate, remove the generated executable artifacts from the repository.

Artifacts Found

  • grpc-server/grpc_health_probe
  • proxies/auth-proxy-hybrid/apiproxy/resources/java/istio-products-javacallout-2.0.0.jar
  • proxies/auth-proxy-legacy/apiproxy/resources/java/istio-products-javacallout-2.0.0.jar
  • proxies/internal-proxy/apiproxy/resources/java/edge-micro-javacallout-1.0.0.jar

Additional Information
This policy is drawn from Security Scorecards, which is a tool that scores a project's adherence to security best practices. You may wish to run a Scorecards scan directly on this repository for more details.

@google-allstar-prod
Copy link
Author

Updating issue after ping interval. See its status below.


Project is out of compliance with Binary Artifacts policy: binaries present in source code

Rule Description
Binary Artifacts are an increased security risk in your repository. Binary artifacts cannot be reviewed, allowing the introduction of possibly obsolete or maliciously subverted executables. For more information see the Security Scorecards Documentation for Binary Artifacts.

Remediation Steps
To remediate, remove the generated executable artifacts from the repository.

Artifacts Found

  • grpc-server/grpc_health_probe
  • proxies/auth-proxy-hybrid/apiproxy/resources/java/istio-products-javacallout-2.0.0.jar
  • proxies/auth-proxy-legacy/apiproxy/resources/java/istio-products-javacallout-2.0.0.jar
  • proxies/internal-proxy/apiproxy/resources/java/edge-micro-javacallout-1.0.0.jar

Additional Information
This policy is drawn from Security Scorecards, which is a tool that scores a project's adherence to security best practices. You may wish to run a Scorecards scan directly on this repository for more details.

@google-allstar-prod
Copy link
Author

Updating issue after ping interval. See its status below.


Project is out of compliance with Binary Artifacts policy: binaries present in source code

Rule Description
Binary Artifacts are an increased security risk in your repository. Binary artifacts cannot be reviewed, allowing the introduction of possibly obsolete or maliciously subverted executables. For more information see the Security Scorecards Documentation for Binary Artifacts.

Remediation Steps
To remediate, remove the generated executable artifacts from the repository.

Artifacts Found

  • grpc-server/grpc_health_probe
  • proxies/auth-proxy-hybrid/apiproxy/resources/java/istio-products-javacallout-2.0.0.jar
  • proxies/auth-proxy-legacy/apiproxy/resources/java/istio-products-javacallout-2.0.0.jar
  • proxies/internal-proxy/apiproxy/resources/java/edge-micro-javacallout-1.0.0.jar

Additional Information
This policy is drawn from Security Scorecards, which is a tool that scores a project's adherence to security best practices. You may wish to run a Scorecards scan directly on this repository for more details.

@google-allstar-prod
Copy link
Author

Updating issue after ping interval. See its status below.


Project is out of compliance with Binary Artifacts policy: binaries present in source code

Rule Description
Binary Artifacts are an increased security risk in your repository. Binary artifacts cannot be reviewed, allowing the introduction of possibly obsolete or maliciously subverted executables. For more information see the Security Scorecards Documentation for Binary Artifacts.

Remediation Steps
To remediate, remove the generated executable artifacts from the repository.

Artifacts Found

  • grpc-server/grpc_health_probe
  • proxies/auth-proxy-hybrid/apiproxy/resources/java/istio-products-javacallout-2.0.0.jar
  • proxies/auth-proxy-legacy/apiproxy/resources/java/istio-products-javacallout-2.0.0.jar
  • proxies/internal-proxy/apiproxy/resources/java/edge-micro-javacallout-1.0.0.jar

Additional Information
This policy is drawn from Security Scorecards, which is a tool that scores a project's adherence to security best practices. You may wish to run a Scorecards scan directly on this repository for more details.

@google-allstar-prod
Copy link
Author

Updating issue after ping interval. See its status below.


Project is out of compliance with Binary Artifacts policy: binaries present in source code

Rule Description
Binary Artifacts are an increased security risk in your repository. Binary artifacts cannot be reviewed, allowing the introduction of possibly obsolete or maliciously subverted executables. For more information see the Security Scorecards Documentation for Binary Artifacts.

Remediation Steps
To remediate, remove the generated executable artifacts from the repository.

Artifacts Found

  • grpc-server/grpc_health_probe
  • proxies/auth-proxy-hybrid/apiproxy/resources/java/istio-products-javacallout-2.0.0.jar
  • proxies/auth-proxy-legacy/apiproxy/resources/java/istio-products-javacallout-2.0.0.jar
  • proxies/internal-proxy/apiproxy/resources/java/edge-micro-javacallout-1.0.0.jar

Additional Information
This policy is drawn from Security Scorecards, which is a tool that scores a project's adherence to security best practices. You may wish to run a Scorecards scan directly on this repository for more details.

@google-allstar-prod
Copy link
Author

Updating issue after ping interval. See its status below.


Project is out of compliance with Binary Artifacts policy: binaries present in source code

Rule Description
Binary Artifacts are an increased security risk in your repository. Binary artifacts cannot be reviewed, allowing the introduction of possibly obsolete or maliciously subverted executables. For more information see the Security Scorecards Documentation for Binary Artifacts.

Remediation Steps
To remediate, remove the generated executable artifacts from the repository.

Artifacts Found

  • grpc-server/grpc_health_probe
  • proxies/auth-proxy-hybrid/apiproxy/resources/java/istio-products-javacallout-2.0.0.jar
  • proxies/auth-proxy-legacy/apiproxy/resources/java/istio-products-javacallout-2.0.0.jar
  • proxies/internal-proxy/apiproxy/resources/java/edge-micro-javacallout-1.0.0.jar

Additional Information
This policy is drawn from Security Scorecards, which is a tool that scores a project's adherence to security best practices. You may wish to run a Scorecards scan directly on this repository for more details.

@google-allstar-prod
Copy link
Author

Updating issue after ping interval. See its status below.


Project is out of compliance with Binary Artifacts policy: binaries present in source code

Rule Description
Binary Artifacts are an increased security risk in your repository. Binary artifacts cannot be reviewed, allowing the introduction of possibly obsolete or maliciously subverted executables. For more information see the Security Scorecards Documentation for Binary Artifacts.

Remediation Steps
To remediate, remove the generated executable artifacts from the repository.

Artifacts Found

  • grpc-server/grpc_health_probe
  • proxies/auth-proxy-hybrid/apiproxy/resources/java/istio-products-javacallout-2.0.0.jar
  • proxies/auth-proxy-legacy/apiproxy/resources/java/istio-products-javacallout-2.0.0.jar
  • proxies/internal-proxy/apiproxy/resources/java/edge-micro-javacallout-1.0.0.jar

Additional Information
This policy is drawn from Security Scorecards, which is a tool that scores a project's adherence to security best practices. You may wish to run a Scorecards scan directly on this repository for more details.

@google-allstar-prod
Copy link
Author

Updating issue after ping interval. See its status below.


Project is out of compliance with Binary Artifacts policy: binaries present in source code

Rule Description
Binary Artifacts are an increased security risk in your repository. Binary artifacts cannot be reviewed, allowing the introduction of possibly obsolete or maliciously subverted executables. For more information see the Security Scorecards Documentation for Binary Artifacts.

Remediation Steps
To remediate, remove the generated executable artifacts from the repository.

Artifacts Found

  • grpc-server/grpc_health_probe
  • proxies/auth-proxy-hybrid/apiproxy/resources/java/istio-products-javacallout-2.0.0.jar
  • proxies/auth-proxy-legacy/apiproxy/resources/java/istio-products-javacallout-2.0.0.jar
  • proxies/internal-proxy/apiproxy/resources/java/edge-micro-javacallout-1.0.0.jar

Additional Information
This policy is drawn from Security Scorecards, which is a tool that scores a project's adherence to security best practices. You may wish to run a Scorecards scan directly on this repository for more details.

@google-allstar-prod
Copy link
Author

Updating issue after ping interval. See its status below.


Project is out of compliance with Binary Artifacts policy: binaries present in source code

Rule Description
Binary Artifacts are an increased security risk in your repository. Binary artifacts cannot be reviewed, allowing the introduction of possibly obsolete or maliciously subverted executables. For more information see the Security Scorecards Documentation for Binary Artifacts.

Remediation Steps
To remediate, remove the generated executable artifacts from the repository.

Artifacts Found

  • grpc-server/grpc_health_probe
  • proxies/auth-proxy-hybrid/apiproxy/resources/java/istio-products-javacallout-2.0.0.jar
  • proxies/auth-proxy-legacy/apiproxy/resources/java/istio-products-javacallout-2.0.0.jar
  • proxies/internal-proxy/apiproxy/resources/java/edge-micro-javacallout-1.0.0.jar

Additional Information
This policy is drawn from Security Scorecards, which is a tool that scores a project's adherence to security best practices. You may wish to run a Scorecards scan directly on this repository for more details.

@google-allstar-prod
Copy link
Author

Updating issue after ping interval. See its status below.


Project is out of compliance with Binary Artifacts policy: binaries present in source code

Rule Description
Binary Artifacts are an increased security risk in your repository. Binary artifacts cannot be reviewed, allowing the introduction of possibly obsolete or maliciously subverted executables. For more information see the Security Scorecards Documentation for Binary Artifacts.

Remediation Steps
To remediate, remove the generated executable artifacts from the repository.

Artifacts Found

  • grpc-server/grpc_health_probe
  • proxies/auth-proxy-hybrid/apiproxy/resources/java/istio-products-javacallout-2.0.0.jar
  • proxies/auth-proxy-legacy/apiproxy/resources/java/istio-products-javacallout-2.0.0.jar
  • proxies/internal-proxy/apiproxy/resources/java/edge-micro-javacallout-1.0.0.jar

Additional Information
This policy is drawn from Security Scorecards, which is a tool that scores a project's adherence to security best practices. You may wish to run a Scorecards scan directly on this repository for more details.

@google-allstar-prod
Copy link
Author

Updating issue after ping interval. See its status below.


Project is out of compliance with Binary Artifacts policy: binaries present in source code

Rule Description
Binary Artifacts are an increased security risk in your repository. Binary artifacts cannot be reviewed, allowing the introduction of possibly obsolete or maliciously subverted executables. For more information see the Security Scorecards Documentation for Binary Artifacts.

Remediation Steps
To remediate, remove the generated executable artifacts from the repository.

Artifacts Found

  • grpc-server/grpc_health_probe
  • proxies/auth-proxy-hybrid/apiproxy/resources/java/istio-products-javacallout-2.0.0.jar
  • proxies/auth-proxy-legacy/apiproxy/resources/java/istio-products-javacallout-2.0.0.jar
  • proxies/internal-proxy/apiproxy/resources/java/edge-micro-javacallout-1.0.0.jar

Additional Information
This policy is drawn from Security Scorecards, which is a tool that scores a project's adherence to security best practices. You may wish to run a Scorecards scan directly on this repository for more details.

Sign up for free to subscribe to this conversation on GitHub. Already have an account? Sign in.
Labels
Projects
None yet
Development

No branches or pull requests

0 participants